API Exchange · Sovico Group

Connect digital-transformation data through a single API gateway

The Sovico TMO Open API sandbox portal: member companies publish and consume APIs securely under central governance by the TMO Office. All data is 100% simulated.

49sample APIs in the catalog, simulated data
2Environments: Sandbox, simulated Production
4Quota tiers: Public to Strategic
curl -X GET \
  https://apis-dev.hdbank.work/quotes/qt-1 \
  -H "apikey: $KEY"
# response
{
  "quote_id": "qt-1",
  "premium": 1200000,
  "currency": "VND"
}
const res = await fetch(
  "https://apis-dev.hdbank.work/quotes/qt-1",
  { headers: { apikey: key } }
);
const quote = await res.json();
console.log(quote.premium); // 1200000
import requests

r = requests.get( "https://apis-dev.hdbank.work/quotes/qt-1", headers={"apikey": key}, ) print(r.json()"premium") # 1200000

● 200 OK · sandbox, simulated data

API catalog

Explore APIs ready to integrate

Approval Workflow API

1.8
Khởi tạo và theo dõi luồng phê duyệt nhiều cấp với SLA và ủy quyền. (API mẫu của cổng thử nghiệm, dữ liệu 100% giả lập.)

Baggage

1.3
Mua thêm hành lý ký gửi theo gói cân nặng, trước chuyến bay hoặc sau khi đã xuất vé. (API mẫu của cổng thử nghiệm, dữ liệu 100% giả lập.)

Bancassurance Offers

0.8
Gợi ý và khởi tạo hồ sơ sản phẩm bảo hiểm liên kết theo hồ sơ khách hàng. (API mẫu của cổng thử nghiệm, dữ liệu 100% giả lập.)

Bill Payments

1.7
Thanh toán hóa đơn điện, nước, viễn thông, thẻ tín dụng và khoản vay. (API mẫu của cổng thử nghiệm, dữ liệu 100% giả lập.)

Booking

3.0
Giữ chỗ, nhập thông tin hành khách và tạo mã đặt chỗ (PNR) cho đại lý trực tuyến. (API mẫu của cổng thử nghiệm, dữ liệu 100% giả lập.)

Booking Management

1.8
Tra cứu, đổi chuyến, đổi tên, hủy và hoàn vé theo điều kiện hạng vé. (API mẫu của cổng thử nghiệm, dữ liệu 100% giả lập.)

Branches & ATMs

1.3
Vị trí chi nhánh, phòng giao dịch, ATM và đặt lịch hẹn tại quầy. (API mẫu của cổng thử nghiệm, dữ liệu 100% giả lập.)

Budget & Cost API

2.1
Ngân sách phân bổ, chi phí thực tế và chỉ số CPI/SPI theo dự án. (API mẫu của cổng thử nghiệm, dữ liệu 100% giả lập.)

Cards

1.6
Đăng ký phát hành thẻ ghi nợ, thẻ tín dụng và theo dõi trạng thái hồ sơ mở thẻ. (API mẫu của cổng thử nghiệm, dữ liệu 100% giả lập.)

Channel Preferences

1.0
Thiết lập kênh liên lạc ưu tiên và lịch sử truy cập gần đây của khách hàng. (API mẫu của cổng thử nghiệm, dữ liệu 100% giả lập.)

Customer Profile

1.5
Truy vấn thông tin định danh và nhân khẩu học của khách hàng khi có sự đồng ý. (API mẫu của cổng thử nghiệm, dữ liệu 100% giả lập.)

Deposit Accounts

2.0
Danh sách và chi tiết tài khoản thanh toán, tiết kiệm có kỳ hạn, tài khoản đa tiền tệ. (API mẫu của cổng thử nghiệm, dữ liệu 100% giả lập.)

How it works

From sign-up to operation in four steps

01

Register an application

Sign in with SSO (Keycloak) and create an application on the portal.

02

Request access

Pick the APIs you need. INS-02 is open to all developers; IDN-01 and PAY-03 are for authorized teams.

03

Try it in the Sandbox

Get a sandbox key instantly and test with simulated data in the interactive OpenAPI docs.

04

Move to simulated Production

Once the API owner approves, your app receives OAuth 2.0 credentials for the simulated production environment.

API consumers

  • Call APIs through one unified endpoint with standard authentication
  • OpenAPI 3.0 docs with a built-in try-it button
  • Tiered quotas with RateLimit headers on every response
Start integrating

API providers

  • Publish APIs on a central gateway without running your own infrastructure
  • Control users, access scope and application approval
  • A usage log for every call, without request bodies
Contact TMO

Security and governance

Share data under control

Every API is published through a central gateway with authentication and per-application quotas.

OAuth 2.0 and mTLSApplications authenticate with client credentials; mTLS for sensitive APIs.
Scope-based authorizationEach application can only call the APIs and scopes it was approved for.
Usage loggingEach call emits a usage-event record for reconciliation; request bodies are never stored.
Quotas and monitoringPer-application rate limits; exceeding them returns 429 with Retry-After.

Ready to connect?

Read the integration guide or contact the TMO Office to assess your needs.